PT-2026-33839 · Unknown · Openxiangshan Nemu
Published
2026-04-20
·
Updated
2026-04-21
·
CVE-2026-29646
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
OpenXiangShan NEMU versions prior to 55295c4
Description
When running with the RVH (Hypervisor extension) enabled, a VS-mode guest write to the supervisor interrupt-enable CSR
sie may be handled incorrectly. This can influence the machine-level interrupt enable state mie, breaking privilege and virtualization isolation. Such a flaw can lead to denial of service or privilege-boundary violation in environments relying on NEMU for correct interrupt virtualization.Recommendations
Update to version 55295c4 or later.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Openxiangshan Nemu